data:image/s3,"s3://crabby-images/e78e3/e78e397d347d9087aef8b4ab467923da345e3f9f" alt="Cisco 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion Configuration Manual Download Page 478"
22-62
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
OL-20748-01
Chapter 22 Applying Application Layer Protocol Inspection
HTTP Inspection
f.
(Optional) To match text found in the HTTP request message header, or to restrict the count or length
of the header, enter the following command:
hostname(config-cmap)#
match
[
not
]
request header
{[
field
]
[
regex
[
regex_name
|
class
regex_class_name
]] |
[
length gt
max_length_bytes
|
count gt
max_count_bytes
]}
Where the
field
is the predefined message header keyword. The
regex
regex_name
argument is the
regular expression you created in
Step 1
. The
class
regex_class_name
is the regular expression class
map you created in
Step 2
. The
length gt
max_bytes
is the maximum message body length in bytes.
The
count gt
max_count
is the maximum number of header fields.
g.
(Optional) To match text found in the HTTP request message method, enter the following command:
hostname(config-cmap)#
match
[
not
]
request method
{[
method
] |
[
regex
[
regex_name
|
class
regex_class_name
]]
Where the
method
is the predefined message method keyword. The
regex
regex_name
argument is
the regular expression you created in
Step 1
. The
class
regex_class_name
is the regular expression
class map you created in
Step 2
.
h.
(Optional) To match text found in the HTTP request message URI, enter the following command:
hostname(config-cmap)#
match
[
not
]
request uri
{
regex
[
regex_name
|
class
regex_class_name
] |
length gt
max_bytes
}
Where the
regex
regex_name
argument is the regular expression you created in
Step 1
. The
class
regex_class_name
is the regular expression class map you created in
Step 2
. The
length gt
max_bytes
is the maximum message body length in bytes.
i.
(Optional) To match text found in the HTTP response message body, or to comment out Java applet
and Active X object tags in order to filter them, enter the following command:
hostname(config-cmap)#
match
[
not
]
response body
{[
active-x
] | [
java-applet
] |
[
regex
[
regex_name
|
class
regex_class_name
]] |
length gt
max_bytes
}
Where the
regex
regex_name
argument is the regular expression you created in
Step 1
. The
class
regex_class_name
is the regular expression class map you created in
Step 2
. The
length gt
max_bytes
is the maximum message body length in bytes.
j.
(Optional) To match text found in the HTTP response message header, or to restrict the count or
length of the header, enter the following command:
hostname(config-cmap)#
match
[
not
]
response header
{[
field
]
[
regex
[
regex_name
|
class
regex_class_name
]] |
[
length gt
max_length_bytes
|
count gt
max_count
]}
Where the
field
is the predefined message header keyword. The
regex
regex_name
argument is the
regular expression you created in
Step 1
. The
class
regex_class_name
is the regular expression class
map you created in
Step 2
. The
length gt
max_bytes
is the maximum message body length in bytes.
The
count gt
max_count
is the maximum number of header fields.
k.
(Optional) To match text found in the HTTP response message status line, enter the following
command:
hostname(config-cmap)#
match
[
not
]
response status-line
{
regex
[
regex_name
|
class
regex_class_name
]}
Where the
regex
regex_name
argument is the regular expression you created in
Step 1
. The
class
regex_class_name
is the regular expression class map you created in
Step 2
.
Step 4
Create an HTTP inspection policy map, enter the following command:
hostname(config)#
policy-map type inspect http
policy_map_name
Summary of Contents for 6500 - Catalyst Series 10 Gigabit EN Interface Module Expansion
Page 35: ...P A R T 1 Getting Started and General Information ...
Page 36: ......
Page 297: ...P A R T 2 Configuring the Security Policy ...
Page 298: ......
Page 521: ...P A R T 3 System Administration ...
Page 522: ......
Page 613: ...P A R T 4 Reference ...
Page 614: ......